Hanz Ostmaster’s revenge: An SSL Validation issue

Unauthenticated Backdoor Access in Unanet

The default configuration of the Unanet web application has a backdoor that can allow ...

Read More

Is ModSecurity’s SecRules Turing Complete?

Have you ever seen a rule for ModSecurity? They may look similar to the following:

Read More

OWASP Core Rule Set 3.0.0 (Final) release

The OWASP Core Rule Set (CRS) team is excited to announce the immediate availability of the OWASP ...

Read More

OWASP ModSecurity CRS Version 3.0 RC2 Released

The OWASP Core Rule Set (CRS) is an Open Source project run by the Open Web Application Security ...

Read More

OWASP ModSecurity CRS Version 3.0 RC1 Released

Trustwave has been dedicated to supporting ModSecurity and the associated community for the better ...

Read More

Base64 versus Plaintext Observations

Recently we have been working on the libmodsecurity project. As part of the project we no longer ...

Read More

Sending ModSecurity Logs to MySQL

Previous Work

Read More